Alert GCSA-26241 - Aggiornamento di sicurezza per Mozilla Firefox e Thunderbird
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ****************************************************************** alert ID: GCSA-26241 data: 30 settembre 2026 titolo: Aggiornamento di sicurezza per Mozilla Firefox e Thunderbird ****************************************************************** :: Descrizione del problema Mozilla ha rilasciato nuove versioni del browser Firefox e del client di posta Thunderbird, con le quali risolve 57 vulnerabilita', di cui 6 con gravita' "critica" e 51 con gravita' "alta". Maggiori informazioni sono disponibili alla sezione "Riferimenti". :: Software interessato Firefox versioni precedenti alla 157 Firefox versioni precedenti alla ESR 153.4 Firefox versioni precedenti alla ESR 140.17 Firefox versioni precedenti alla ESR 115.42 Thunderbird versioni precedenti alla 157 Thunderbird versioni precedenti alla ESR 153.4.0 Thunderbird versioni precedenti alla ESR 140.17.0 :: Impatto Denial of Service (DoS) Esecuzione remota di codice arbitrario (RCE) Acquisizione di privilegi piu' elevati (EoP) Bypass delle funzionalita' di sicurezza (SFB) Accesso a dati riservati (ID) Spoofing (Provide Misleading Information) :: Soluzioni Aggiornare Firefox all'ultima versione https://support.mozilla.org/it/kb/aggiornamento-firefox https://www.firefox.com/it/ https://www.firefox.com/it/browsers/enterprise/ https://www.firefox.com/it/download/all/ Aggiornare Thunderbird all'ultima versione https://support.mozilla.org/it/kb/aggiornamento-di-thunderbird https://www.thunderbird.net/it/ https://www.thunderbird.net/it/thunderbird/all/ https://www.thunderbird.net/it/thunderbird/releases/ :: Riferimenti Mozilla Foundation Security Advisory https://www.mozilla.org/en-US/security/advisories/mfsa2026-97/ https://www.mozilla.org/en-US/security/advisories/mfsa2026-98/ https://www.mozilla.org/en-US/security/advisories/mfsa2026-99/ https://www.mozilla.org/en-US/security/advisories/mfsa2026-100/ https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird157 https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird153.4 https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird140.17 Firefox - Release Notes https://www.firefox.com/en-US/firefox/157.0/releasenotes/ https://www.mozilla.org/en-US/firefox/140.17.0/releasenotes/ https://www.firefox.com/en-US/firefox/115.42.0/releasenotes/ Thunderbird - Release Notes https://www.thunderbird.net/en-US/thunderbird/157.0/releasenotes/ https://www.thunderbird.net/en-US/thunderbird/153.4.0esr/releasenotes/ https://www.thunderbird.net/en-US/thunderbird/140.17.0esr/releasenotes/ Mitre CVE I riferimenti CVE sono disponibili nell'advisory originale. GARR CERT Security Alert - subscribe/unsubscribe: http://www.cert.garr.it/alert/ricevi-gli-alert-di-cert -----BEGIN PGP SIGNATURE----- iF0EAREIAB0WIQTGpdiR5MqstacBGHbBnEyTZRJgQgUCarziJwAKCRDBnEyTZRJg Qk8xAJ4lM4G5To19CT3O1MpNg+zBbkNU0gCfbgmMGOZL8rVbDetomdNfeIHMG0I= =A3+Y -----END PGP SIGNATURE-----